SIEMENS-SSA-284673
·
Published 2019-02-12
·
View on Siemens ProductCERT ↗
SSA-284673 (Last Update: 2019-02-12): Vulnerability in Industrial Products
CVSS N/A
MEDIUM
Risk Summary
<p>Several industrial devices are affected by a vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.</p> <p>Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.</p>
Remediations
- Refer to Siemens ProductCERT advisory for patch and remediation guidance.
Affected Vendors
Siemens
Affected Products (1)
Siemens
·
SSA-284673 (Last Update: 2019-02-12): Vulnerability in Industrial Products
See advisory
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more